Pv-Magazine-Australia Malware Targets 800 PV Monitoring Devices in Japan
Article Content
- •800 remote monitoring devices were compromised by malware in May 2024.
- •The malware created a backdoor for unauthorized access and financial fraud.
- •Contec identified 19 vulnerabilities in the affected devices, but many users did not apply patches.
In May 2024, a random malware strain targeted 800 remote monitoring devices at ground-mounted photovoltaic (PV) plants in Japan, as reported by Girasol Energy. The malware installed a backdoor, allowing unauthorized access and enabling cybercriminals to use internet banking for fraudulent activities. Although the incident did not cause financial or technical damage to the solar facilities, it highlighted vulnerabilities in the SolarView Compact SV-CPT-MC310 devices developed by Contec. The company identified 19 vulnerabilities in the SolarView devices from 2021 to 2023 and issued patches, but many users failed to apply them. This negligence led to the exploitation of these devices in a scam. The details of the incident's discovery remain unclear, but it likely surfaced during police investigations into scam victims. Experts warn that all remote monitoring devices connected to the internet are at risk if not properly secured.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Continue Reading
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…
CISA Mandates Urgent Patching of Five Critical Flaws Exploited by Flax Typhoon The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has ordered federal agencies to patch five critical vulnerabilities by October 11, 2026, following exploitation by the China-linked hacking group Flax Typhoon. The vulnerabilities, added to CISA's Known Exploited Vulnerabilities (KEV) catalog, include…